CN107563181A - A kind of verification method and system for clicking graphical verification code - Google Patents
A kind of verification method and system for clicking graphical verification code Download PDFInfo
- Publication number
- CN107563181A CN107563181A CN201711003786.2A CN201711003786A CN107563181A CN 107563181 A CN107563181 A CN 107563181A CN 201711003786 A CN201711003786 A CN 201711003786A CN 107563181 A CN107563181 A CN 107563181A
- Authority
- CN
- China
- Prior art keywords
- information
- checking
- verification code
- targeted customer
- graphical verification
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Landscapes
- Information Transfer Between Computers (AREA)
Abstract
The embodiments of the invention provide a kind of verification method and system for clicking graphical verification code, for realizing the checking of multi-application system graphical verification code, simplifies user's operation, improves the security of checking.Method includes:The checking request that different application end background system is sent is received, graphical verification code parameter information is included in checking request;Targeted graphical identifying code is generated according to graphical verification code parameter information and corresponding clicks operation instruction information and intended application end background system corresponding to being sent to;Checking information corresponding to operation instruction information is preserved, checking information includes point selection operation initialization step information and pre-set co-ordinate information;Receive intended application end background system feedback clicks operation information, clicks operation information and is generated according to targeted customer's clicking operating procedure and clicking coordinate information on graphical verification code;Judgement clicks whether operation information matches with checking information, if matching, judges that targeted customer is proved to be successful, if mismatching, judges targeted customer's authentication failed.
Description
Technical field
The present invention relates to technical field of network security, more particularly to a kind of verification method for clicking graphical verification code and it is
System.
Background technology
Graphical verification code on website or Internet application system Interactive Web Page (such as log in page), is shown with pictorial manner
Random random verification code verified, rogue program or automated procedures can not be bypassed this identifying code and carried out
Repeated attempt is verified, improves Brute Force difficulty, thus is widely used by various network application systems.
Often it is manually entered in existing graphical verification code scheme in existing graphical verification code scheme using checking user
Character and the mode of the character integrity in graphical verification code are verified, for example, word compares or numeral is than equity, every suit
The application system of graphical verification code is needed often individually to develop a set of graphical verification code scheme, different application systems is corresponding different
Graphical verification code scheme.
, it is necessary to which user is manually entered the character in graphical verification code in existing scheme, when character is more, input operation is numerous
It is trivial, secondly, need to transmit the character of user's input in verification process, character has in transmitting procedure by rogue program identification
Risk, again, every suit need the application system of graphical verification code to need individually to develop a set of graphical verification code scheme, work as application
When system is more, overlapping development graphical verification code scheme, development cost and network system resources are wasted.
The content of the invention
The embodiments of the invention provide a kind of verification method and system for clicking graphical verification code, for realizing multiple applications
The graphical verification code checking of system, simplifies user's checking operation, improves the security of checking.
First aspect of the embodiment of the present invention provides a kind of verification method for clicking graphical verification code, it may include:
The checking request that different application end background system is sent is received, graphical verification code parameter is included in the checking request
Information;
According to the graphical verification code parameter information generate targeted graphical identifying code and it is corresponding click operation instruction information,
And intended application end background system corresponding to being sent to;
Checking information corresponding to the operation instruction information is preserved, the checking information includes point selection operation initialization step letter
Breath and pre-set co-ordinate information;
Receive intended application end background system feedback clicks operation information, and the operation information that clicks is according to target
User's clicking operating procedure and clicking coordinate information on the graphical verification code generates;
Click whether operation information matches with the checking information described in judgement, if matching, judges the targeted customer
It is proved to be successful, if mismatching, judges targeted customer's authentication failed.
Optionally, it is described that figure is generated according to the graphical verification code parameter information as a kind of possible embodiment
Identifying code and it is corresponding click operation instruction information, including:
One is randomly selected from context vault with the Target Photo that the graphical verification code parameter information matches as the back of the body
Scape picture, and draw speckle patterns at random on the background picture;
The Chinese character for obtaining the first preset number at random from GBK Chinese character basies forms first set;
Font information corresponding to Chinese character random selection in respectively described first set, and will according to the font information
Corresponding Chinese character is plotted in different interim painting canvas, the font information include font size, font style, font color,
One or more in the font anglec of rotation;
Randomly choose the canvas coordinate point of first preset number on the background picture, and by the interim painting canvas
It is plotted to respectively at the canvas coordinate point, forms graphical verification code;
The different Chinese character of the second preset number is randomly selected in sequence from the first set as target characters shape
Into second set;
The graphical verification code pair is sequentially generated according to target characters in the second set and in the second set
That answers clicks operation instruction information.
Optionally, as a kind of possible embodiment, the interim painting canvas is plotted to the painting canvas respectively described
Before at coordinate points, methods described also includes:
By pi and sinusoidal calculations, each interim painting canvas is distorted and stretch processing.
Optionally, as a kind of possible embodiment, the interim painting canvas is plotted to the painting canvas respectively described
After at coordinate points, methods described also includes:
The point coordinates of preset number is generated at random in the background picture, and according to different font informations in the back of the body
Noise corresponding to generation in scape picture;
According to the font color of the target characters, the straight of different length is drawn with approximate color in the target characters
Line or curve include solid line, dotted line, the class style of strigula three as interfering line, the species of the interfering line.
Optionally, as a kind of possible embodiment, the judgement click operation information whether with the checking information
Matching, including:
If the coordinate for clicking coordinate points and the target characters in the second set of the point selection operation of the targeted customer
Point mismatches, or, the sequencing for clicking coordinate points of the point selection operation of the targeted customer and the mesh in the second set
The order for marking Chinese character mismatches, then whether decision-point selection operation information mismatches with the checking information;
If the coordinate for clicking coordinate points and the target characters in the second set of the point selection operation of the targeted customer
Point match, and the targeted customer point selection operation the sequencing for clicking coordinate points whether with the second set
The order of target characters matches, then clicks whether operation information matches with the checking information described in judgement.
Second aspect of the embodiment of the present invention provides a kind of checking system for clicking graphical verification code, it is characterised in that bag
Include:
At least one application end background system, application end foreground system, authentication server, wherein,
The authentication server includes the first receiving module, the checking sent for receiving different application end background system
Ask, graphical verification code parameter information is included in the checking request;
The authentication server also includes generation module, for generating figure according to the graphical verification code parameter information
Identifying code and it is corresponding click operation instruction information, and intended application end background system corresponding to being sent to;
The authentication server also includes memory module, and letter is verified corresponding to the operation instruction information for preserving
Breath, the checking information include point selection operation initialization step information and pre-set co-ordinate information;
The application end background system is used for the operation information that clicks for receiving corresponding application end foreground system transmission, described
Operation information generates according to targeted customer's clicking operating procedure and clicking coordinate information on the graphical verification code;
The authentication server also includes the second receiving module, for receiving intended application end background system feedback
Described click operation information;
The authentication server also includes judge module, for judge it is described click operation information whether with the checking
Information matches, if matching, judges that the targeted customer is proved to be successful, if mismatching, judge that the targeted customer verifies and lose
Lose.
Optionally, as a kind of possible embodiment, the generation module, including:
First choice unit, match for randomly selecting one from context vault with the graphical verification code parameter information
Target Photo as background picture, and on the background picture at random draw speckle patterns;
Second selecting unit, the Chinese character for obtaining the first preset number at random from GBK Chinese character basies form first set;
3rd selecting unit, for being respectively font information corresponding to the Chinese character random selection in the first set, and
Corresponding Chinese character is plotted in different interim painting canvas according to the font information, the font information include font size,
One or more in font style, font color, the font anglec of rotation;
First generation unit, for randomly choosing the canvas coordinate of first preset number on the background picture
Point, and the interim painting canvas is plotted at the canvas coordinate point respectively, generate graphical verification code;
4th selecting unit, for randomly selecting the different Chinese of the second preset number in sequence from the first set
Word forms second set as target characters;
Second generation unit, for being sequentially generated according to target characters in the second set and in the second set
Operation instruction information is clicked corresponding to the graphical verification code.
Optionally, also include as a kind of possible embodiment, the generation module:
Painting canvas processing unit, for it is described the interim painting canvas is plotted at the canvas coordinate point respectively before,
By pi and sinusoidal calculations, each interim painting canvas is distorted and stretch processing.
Optionally, also include as a kind of possible embodiment, the generation module:
Noise generation unit, for generating the point coordinates of preset number at random in the background picture, and according to different
Font information generated in the background picture corresponding to noise;
Interfering line generation unit, for the font color according to the target characters, with approximation in the target characters
Color draws the straight line of different length or curve includes solid line, dotted line, strigula three as interfering line, the species of the interfering line
Class style.
Optionally, as a kind of possible embodiment, the judge module, including:
First judging unit, if the point selection operation of the targeted customer clicks coordinate points and the mesh in the second set
The coordinate points for marking Chinese character mismatch, or, the sequencing for clicking coordinate points and described the of the point selection operation of the targeted customer
The order of target characters in two set is mismatched, then operation information is clicked described in judgement and is mismatched with the checking information;If
The coordinate points for clicking coordinate points and the target characters in the second set of the point selection operation of the targeted customer match, and
The targeted customer point selection operation the sequencing for clicking coordinate points whether with the target characters in the second set
Order matches, then click operation information described in judgement matches with the checking information;
Second judging unit, if the operation information that clicks matches with the checking information, judge that the target is used
Family is proved to be successful, if the operation information that clicks mismatches with the checking information, judges targeted customer's authentication failed.
As can be seen from the above technical solutions, the embodiment of the present invention has advantages below:
In the embodiment of the present invention, authentication server can be according in the checking request that different application end background system is sent
Comprising graphical verification code parameter information come generate graphical verification code and it is corresponding click operation instruction information, relative to existing side
Case, multiple application systems can share a set of checking system in the embodiment of the present invention, save development cost and network system resources,
Corresponding intended application end background system can be to authentication server feedback target user clicking on graphical verification code
Operating procedure generation clicks operation information, and the authentication server can judge that targeted customer clicks according to operation information is clicked
Whether operation matches with checking information, and then determines that whether targeted customer is proved to be successful, and relative to existing scheme, only needs user
A selection operation is carried out, without input operation, user's checking operation is simplified, improves Consumer's Experience, meanwhile, nothing in verification process
Need to input with transmission character information, only need to transmit user and click operation information, add rogue program or machine code identification is tested
The difficulty of card process, and then add the security of graphical verification code verification process.
Brief description of the drawings
Fig. 1 is a kind of one embodiment schematic diagram for the verification method for clicking graphical verification code in the embodiment of the present invention;
Fig. 2 is the refinement step schematic diagram of step 200 in Fig. 1;
Fig. 3 is that the specific of midpoint of embodiment of the present invention selection operation configured information uses example schematic;
Fig. 4 is one of a kind of verification method for clicking graphical verification code in the embodiment of the present invention and specifically illustrated with example
Figure;
Fig. 5 is a kind of one embodiment schematic diagram for the checking system for clicking graphical verification code in the embodiment of the present invention;
Fig. 6 is one of generation module 502 thin in a kind of checking system for clicking graphical verification code in the embodiment of the present invention
Change high-level schematic functional block diagram;
Fig. 7 be in the embodiment of the present invention in a kind of checking system for clicking graphical verification code generation module 502 another
Refine high-level schematic functional block diagram;
Fig. 8 is a kind of refinement work(of judge module 504 in checking system for clicking graphical verification code in the embodiment of the present invention
Can module diagram.
Embodiment
The embodiments of the invention provide a kind of verification method and system for clicking graphical verification code, for realizing multiple applications
The graphical verification code checking of system, simplifies user's operation, improves Consumer's Experience.
In order that those skilled in the art more fully understand the present invention program, below in conjunction with the embodiment of the present invention
Accompanying drawing, the technical scheme in the embodiment of the present invention is clearly and completely described, it is clear that described embodiment is only
The embodiment of a part of the invention, rather than whole embodiments.Based on the embodiment in the present invention, ordinary skill people
The every other embodiment that member is obtained under the premise of creative work is not made, it should all belong to the model that the present invention protects
Enclose.
Term " first ", " second ", " the 3rd " in description and claims of this specification and above-mentioned accompanying drawing, "
Four " etc. be for distinguishing similar object, without for describing specific order or precedence.It should be appreciated that so use
Data can exchange in the appropriate case, so that the embodiments described herein can be with except illustrating or describing herein
Order beyond appearance is implemented.In addition, term " comprising " and " having " and their any deformation, it is intended that covering is non-exclusive
Include, be not necessarily limited to clearly arrange for example, containing the process of series of steps or unit, method, system, product or equipment
Those steps or unit gone out, but may include not list clearly or consolidate for these processes, method, product or equipment
The other steps or unit having.
In order to make it easy to understand, the idiographic flow in the embodiment of the present invention is described below, referring to Fig. 1, of the invention
A kind of one embodiment for the verification method for clicking graphical verification code may include in embodiment:
100th, the checking request that different application end background system is sent is received;
Every suit needs the application system of graphical verification code often individually to develop a set of graphical verification code side in existing scheme
Case, different application systems correspond to different picture checking systems, and this framework mode can waste development cost and network system
Resource, in view of this, the framework of a picture checking system, checking clothes are shared in the embodiment of the present invention using multiple application systems
Business system can receive the checking request of application end background system corresponding to multiple different application systems, it is allowed to different application system
System can set institute using the graphical verification code with different parameters information, different application systems in the checking request that it sends
The graphical verification code parameter information needed, graphical verification code parameter information can include the size of graphical verification code, picture complexity,
Noise rank etc., specific graphical verification code parameter information can reasonably be set according to the demand of application system, herein
Do not limit.
200th, according to graphical verification code parameter information generate graphical verification code and it is corresponding click operation instruction information, and will
Graphical verification code and the corresponding operation instruction information that clicks are sent to corresponding intended application end background system;
After the checking request that intended application end background system is sent is received, authentication server can be according to figure
Identifying code parameter information generate graphical verification code and it is corresponding click operation instruction information, and by graphical verification code and corresponding point
Selection operation configured information is sent to corresponding intended application end background system, and it is pre- that this clicks operation instruction information instruction point selection operation
Step Information is put, to allow targeted customer to carry out verification operation according to operation instruction information is clicked.
Further, referring to Fig. 2, Fig. 2 is the refinement step schematic diagram of step 200 in Fig. 1.As a kind of possible reality
Mode is applied, step 200 may include:
201st, a Target Photo is randomly selected from context vault as background picture, and random drafting on background picture
Speckle patterns;
Authentication server can randomly select one according to graphical verification code parameter information from context vault and meet the requirements
Target Photo as background picture, and on background picture at random draw speckle patterns, further, verified in the present embodiment
Service system can be that each checking request distributes different background pictures, it is ensured that graphical verification code is mutually obscured.
202nd, the Chinese character for obtaining the first preset number at random from GBK Chinese character basies forms first set;
Authentication server can be with the random Chinese for obtaining the first preset number in individual Chinese character more than 20000 in GBK Chinese character basies
Word forms first set, and specific first preset number can determine according to graphical verification code parameter information, can also be according to testing
The default setting of card service system determines the first preset number, does not limit herein specifically.
203rd, font information corresponding to the Chinese character random selection respectively in first set, and will be corresponding according to font information
Chinese character be plotted in different interim painting canvas;
In order to ensure graphical verification code is mutually obscured, authentication server can randomly choose the first preset number font letter
Breath, Chinese character in first set is drawn respectively into different interim painting canvas according to the first preset number font information of selection,
Specifically, font information can include the one or more in font size, font style, font color, the font anglec of rotation,
Do not limit herein.
Optionally, authentication server can also be further by pi and sinusoidal calculations, to each interim painting canvas
Distort and stretch processing, the word allowed in painting canvas can not identify quickly through in general machine recognition technology substantially,
Improve the security of graphical verification code checking.
204th, the canvas coordinate point of the first preset number is randomly choosed on background picture, and interim painting canvas is drawn respectively
To at canvas coordinate point, graphical verification code is formed;
After the Chinese character in first set is plotted into interim painting canvas, authentication server can on background picture with
Machine selects the canvas coordinate point of the first preset number, and the interim painting canvas in step 203 is plotted at canvas coordinate point respectively,
Form graphical verification code.
Optionally, in order to further ensure that graphical verification code is mutually obscured, increase in general machine recognition technology and know
The difficulty of other graphical verification code, after interim painting canvas is plotted at canvas coordinate point respectively, authentication server can be with
The point coordinates of preset number is generated at random in background picture, and is generated and corresponded in the background picture according to different font informations
Noise.
Optionally, authentication server can also be further according to the font color of target characters, in target characters
By the use of approximate color draw different length straight line or curve as interfering line, the species of interfering line can include solid line, dotted line, short
The class style of horizontal line three, specific interfering line form do not limit herein.
205th, the different Chinese character of the second preset number is randomly selected in sequence from first set as target characters shape
Into second set;
After the Chinese character in choosing first set, authentication server can also be random in sequence from first set
The different Chinese character for choosing the second preset number forms second set as target characters, and specific second preset number can basis
Graphical verification code parameter information determines, can also determine the second preset number according to the default setting of authentication server, only needs
Ensure that the second preset number is not more than the first preset number, specific second preset number does not limit herein.
206th, according in second set and in second set target characters be sequentially generated graphical verification code corresponding to click
Operation instruction information.
It is determined that after the Chinese character of second set, authentication server can be according to mesh in second set and in second set
Being sequentially generated corresponding to graphical verification code for Chinese character of mark clicks operation instruction information, specifically, for example, referring to Fig. 3, when first
Gather and be randomly selected to be 5 Chinese characters, respectively " striking ", " bullet ", " quarrel ", " cabin ", " basin ", the Chinese character in second set is in sequence
Be followed successively by " striking ", " basin ", " bullet ", this click operation instruction information can be " please click on successively in order " striking " in figure below,
Three words of " basin ", " bullet ":", it can also be " striking ", " basin ", " bullet " three arranged in sequence that this, which clicks operation instruction information,
Word, corresponding application end background system can generate according to these three words and more specifically click operation instruction information, it is possible to understand that
, the Chinese in the specific first set and second set used in example for clicking operation instruction information shown in above-mentioned Fig. 3
What the number of word was merely exemplary, do not limit herein specifically.Refer in generation graphical verification code and corresponding selection operation
After showing information, graphical verification code and the corresponding operation instruction information that clicks can be sent to corresponding mesh by authentication server
Application end background system is marked, this clicks operation instruction information instruction point selection operation initialization step information, to cause targeted customer can
With according to click operation instruction information carry out verification operation.
In the present embodiment, authentication server according to font, color, line by disturbing, point interference, ambient interferences, word
Picture distortion, rotation etc. technology, to graphical verification code set various dimensions noise disturb, prevent identifying code by rogue program or from
Dynamicization program carries out automatic identification, adds the security of graphical verification code checking.
300th, checking information corresponding to savepoint selection operation configured information;
After graphical verification code is generated, checking information corresponding to operation instruction information can be preserved, the checking information can
With including a selection operation initialization step information and pre-set co-ordinate information.
Specifically, corresponding to the embodiment shown in Fig. 2, this selection operation initialization step information can include in second set
Chinese character order information, the pre-set co-ordinate information can include second set in Chinese character coordinate information.
400th, receive intended application end background system feedback clicks operation information;
Graphical verification code and the corresponding operation instruction information that clicks are sent to corresponding intended application by authentication server
After holding background system, corresponding intended application end background system can feed back it to corresponding application end foreground system and receive
Graphical verification code and it is corresponding click operation instruction information, to allow the targeted customer of application end foreground system according to point
Selection operation configured information carries out clicking operation on graphical verification code, and corresponding application end foreground system can be according to targeted customer
Click operating procedure and click and click operation information corresponding to coordinate information generation, and pass through corresponding intended application end backstage
This is clicked operation information and passes to authentication server by system, further to be verified.
500th, judge to click whether operation information matches with checking information, if matching, judge that targeted customer is proved to be successful,
If mismatching, targeted customer's authentication failed is judged.
Receive intended application end background system feedback click operation information after, authentication server can basis
This clicks operation information and judges that targeted customer clicks whether operating procedure matches with checking information, if matching, judges target
User's checking success, if mismatching, judge targeted customer's authentication failed.
Optionally, corresponding to the embodiment shown in Fig. 2, as a kind of possible embodiment, authentication server judges
Targeted customer clicks whether operating procedure matches with checking information, including:
If the coordinate points for clicking coordinate points and the target characters in second set of the point selection operation of targeted customer mismatch,
Or, the order of the target characters in the sequencing and second set that click coordinate points of the point selection operation of targeted customer is not
Match somebody with somebody, then judge that targeted customer clicks operating procedure and mismatched with checking information;
If the coordinate points for clicking coordinate points and the target characters in second set of the point selection operation of targeted customer match,
And the order of the target characters in the sequencing and second set that click coordinate points of the point selection operation of targeted customer matches,
Then judge that targeted customer clicks operating procedure and matched with checking information.
Specifically, authentication server can first judge the point selection operation of targeted customer whether click coordinate points with second
The coordinate points of target characters in set match;Then, the priority for clicking coordinate points of the point selection operation of targeted customer is judged
Whether order matches with the orders of the target characters in second set, finally, is drawn according to judged result comprehensive analysis twice
The result of targeted customer.
It is understood that in various embodiments of the present invention, the size of the sequence number of above steps is not meant to
The priority of execution sequence, the execution sequence of each step should be determined with its function and internal logic, without tackling the embodiment of the present invention
Implementation process form any restriction.
In the present embodiment, included in the checking request that authentication server can be sent according to different application end background system
Graphical verification code parameter information come generate graphical verification code and it is corresponding click operation instruction information, relative to existing scheme, this
Multiple application systems can share a set of checking system in inventive embodiments, save development cost and network system resources, corresponding
Intended application end background system can be to point selection operation of the authentication server feedback target user on graphical verification code
Step generation clicks operation information, and the authentication server can judge targeted customer's point selection operation according to operation information is clicked
Whether match with checking information, and then determine that whether targeted customer is proved to be successful, relative to existing scheme, only need user to carry out
Point selection operation, without input operation, user's checking operation is simplified, improves Consumer's Experience, meanwhile, without defeated in verification process
Enter with transmission character information, only need to transmit user and click operation information, add rogue program or machine code identification is authenticated
The difficulty of journey, and then add the security of graphical verification code verification process.Above-described embodiment is to one in the embodiment of the present invention
The flow for the verification method that kind clicks graphical verification code is described, in order to make it easy to understand, being used below in conjunction with specific
A kind of verification method for clicking graphical verification code in the embodiment of the present invention is described in detail example, referring to Fig. 4, this hair
One of a kind of verification method for clicking graphical verification code in bright embodiment specifically may include with example:
In the present embodiment, realize the specific system architecture of the verification method based on graphical verification code as shown in figure 4, system by
Application end component 30 and authentication server 40 form, wherein:
Application end component 30 is by front end SDK (Software Development Kit, the developing instrument collection of application software
Close) 301 and backstage access SDK 302 form, wherein front end SDK 301 can include WEB SDK 3011, Android SDK
3012, IOS SDK 3013.Front end SDK 301 is used for the work(for providing website or the calling identifying code service of the Internet, applications front end
Can, backstage accesses SDK 302 and is used to realize website or the Internet, applications backstage and the service of identifying code authentication server interface
Docking.After corresponding component need to be only integrated into project by application developer, simply call several line codes can complete with
The docking of identifying code high in the clouds verification platform, realize the generation, display and verifying function of application program verification code.
Specifically, WEB SDK 3011 are used to realize enterprise web site, portal website, the checking code check of the Internet, applications,
The system of the present invention provides corresponding JavaScript storehouses, and function collection is carried out for website and Internet application system developer
Into.
Android SDK 3012 are used for the identifying code verifying function for realizing the application of Android platform, the present invention
System provide corresponding platform jar file built-in function, for Android developer carry out function integrate.
IOS SDK 3013 are used for the identifying code verifying function for realizing the application of apple ios platform, and system of the invention carries
For the header file and static library of corresponding platform, carry out function for apple developer and integrate.
Backstage access SDK 302 is used for backstage and the identifying code authentication server for realizing website or Internet application system
The docking of interface.
Authentication server 40 by server interface 401, identifying code generation program 402, interference noise processing routine 403,
Identifying code checking routine 404 and caching server 405 form, wherein,
Server interface 401, access function is applied for providing, and the interface pair of the generation of identifying code picture and verification is provided
The entrance of connection function, i.e. application access identifying code function;
Identifying code generates program 402, for the parameter specified according to developer, graphical verification code corresponding to generation,
After noise is handled, the application program for calling end is returned in a manner of binary stream;
Noise processing routine 403 is disturbed, for being subject to colored noise to the graphical verification code of generation, interfering line is handled and right
Word in identifying code does torsional deformation processing;
Identifying code checking routine 404, after checkpoint of the user by clicking on graphical verification code, front end SDK component meetings
Automatically record the operation information that clicks of user, and the verification of graphical verification code is completed according to preset rule;
Caching server 405, for realizing the interim storage of the checking information clicked in graphical verification code, the present embodiment
In, it is preferred that the REDIS to increase income can be used as data cache server.
In the present embodiment, authentication server provides server interface for external service system, and operation system is not required to be concerned about
Concrete implementation process, the various platform SDK that the system that developer need to only be applied by the present invention provides, you can by the present embodiment
In graphical verification code it is integrated apply in the application of developer, saved development cost and network system resources.
It is understood that the verification method based on graphical verification code shown in the embodiment of the present invention can be used for interconnecting
Checking in the scenes such as registration, login, information submission in net application, prevent attack or sudden and violent of the rogue program to the Internet, applications
Power cracks, and so as to effectively ensure the security of the Internet, applications business, specifically with scene, does not limit herein.
A kind of verification method for clicking graphical verification code in the embodiment of the present invention is described above-described embodiment, under
A kind of checking system for clicking graphical verification code in the embodiment of the present invention will be described for face, referring to Fig. 5, the present invention is real
Applying a kind of one embodiment for the checking system for clicking graphical verification code in example may include:
At least one application end background system 70, application end foreground system 60, authentication server 50, wherein,
Authentication server 50 includes the first receiving module 501, for receiving testing for different application end background system transmission
Card is asked, and graphical verification code parameter information is included in checking request;
Authentication server also includes generation module 502, for generating graphic verification according to graphical verification code parameter information
Code and it is corresponding click operation instruction information, and intended application end background system corresponding to being sent to;
Authentication server also includes memory module 505, for preserving checking information corresponding to operation instruction information, checking
Information includes clicking operation initialization step information and pre-set co-ordinate information;
Application end background system 70 be used to receiving corresponding to application end foreground system 60 send click operation information, operation
Information clicks operating procedure generation according to targeted customer on graphical verification code;
Authentication server 50 also includes the second receiving module 503, for receiving intended application end background system feedback
Click operation information;
Authentication server 50 also includes judge module 504, for judge click operation information whether with checking information
Match somebody with somebody, if matching, judge that targeted customer is proved to be successful, if mismatching, judge targeted customer's authentication failed.
It is understood that the corresponding relation of application end background system shown in Fig. 5 and application end foreground system is only
It is exemplary, an application end background system can correspond to one or more application end foreground systems, not limit herein specifically
It is fixed.
In the present embodiment, included in the checking request that authentication server can be sent according to different application end background system
Graphical verification code parameter information come generate graphical verification code and it is corresponding click operation instruction information, relative to existing scheme, this
Multiple application systems can share a set of checking system in inventive embodiments, save development cost and network system resources, corresponding
Intended application end background system can be to point selection operation of the authentication server feedback target user on graphical verification code
Step generation clicks operation information, and the authentication server can judge targeted customer's point selection operation according to operation information is clicked
Whether match with checking information, and then determine that whether targeted customer is proved to be successful, relative to existing scheme, only need user to carry out
Point selection operation, without input operation, user's checking operation is simplified, improves Consumer's Experience, meanwhile, without defeated in verification process
Enter with transmission character information, only need to transmit user and click operation information, add rogue program or machine code identification is authenticated
The difficulty of journey, and then add the security of graphical verification code verification process.
Optionally,, can be with referring to Fig. 6, the generation module 502 in the present embodiment as a kind of possible embodiment
Including:
First choice unit 5021, match for randomly selecting one from context vault with graphical verification code parameter information
Target Photo as background picture, and on background picture at random draw speckle patterns;
Second selecting unit 5022, the Chinese character for obtaining the first preset number at random from GBK Chinese character basies form first
Set;
3rd selecting unit 5023, for being respectively font information corresponding to the Chinese character random selection in first set, and
Corresponding Chinese character is plotted in different interim painting canvas according to font information, font information include font size, font style,
One or more in font color, the font anglec of rotation;
First generation unit 5024, for randomly choosing the canvas coordinate point of the first preset number on background picture, and
Interim painting canvas is plotted at canvas coordinate point respectively, generates graphical verification code;
4th selecting unit 5025, for randomly selecting the different Chinese of the second preset number in sequence from first set
Word forms second set as target characters;
Second generation unit 5026, for being sequentially generated figure according to target characters in second set and in second set
Operation instruction information is clicked corresponding to identifying code.
Optionally, as a kind of possible embodiment, the generation module 502 in the present embodiment, may further include:
Painting canvas processing unit 5027, for before interim painting canvas is plotted at canvas coordinate point respectively, passing through circumference
Rate and sinusoidal calculations, are distorted and stretch processing to each interim painting canvas.
Optionally,, can be with referring to Fig. 7, the generation module 502 in the present embodiment as a kind of possible embodiment
Further comprise:
Noise generation unit 5028, for generating the point coordinates of preset number at random in background picture, and according to different
Font information generated in the background picture corresponding to noise;
Interfering line generation unit 5029, for the font color according to target characters, with approximate color in target characters
The straight line or curve for drawing different length include solid line, dotted line, the class style of strigula three as interfering line, the species of interfering line.
Optionally,, can be with referring to Fig. 8, the judge module 504 in the present embodiment as a kind of possible embodiment
Including:
First judging unit 5041, if the point selection operation of targeted customer clicks coordinate points and the target Chinese in second set
The coordinate points of word mismatch, or, the mesh in the sequencing and second set that click coordinate points of the point selection operation of targeted customer
The order for marking Chinese character mismatches, then decision-point selection operation information mismatches with checking information;If the point selection operation of targeted customer
The coordinate points for clicking coordinate points and the target characters in second set match, and the point selection operation of targeted customer clicks coordinate
Whether the sequencing of point matches with the orders of the target characters in second set, then decision-point selection operation information is believed with checking
Manner of breathing matches;
Second judging unit 5042, is matched if clicking operation information with checking information, judges that targeted customer is proved to be successful,
If clicking operation information to mismatch with checking information, targeted customer's authentication failed is judged.
It is apparent to those skilled in the art that for convenience and simplicity of description, the system of foregoing description,
The specific work process of device and unit, the corresponding process in preceding method embodiment is may be referred to, will not be repeated here.
In several embodiments provided herein, it should be understood that disclosed system, apparatus and method can be with
Realize by another way.For example, device embodiment described above is only schematical, for example, the unit
Division, only a kind of division of logic function, can there is other dividing mode, such as multiple units or component when actually realizing
Another system can be combined or be desirably integrated into, or some features can be ignored, or do not perform.It is another, it is shown or
The mutual coupling discussed or direct-coupling or communication connection can be the indirect couplings by some interfaces, device or unit
Close or communicate to connect, can be electrical, mechanical or other forms.
The unit illustrated as separating component can be or may not be physically separate, show as unit
The part shown can be or may not be physical location, you can with positioned at a place, or can also be distributed to multiple
On NE.Some or all of unit therein can be selected to realize the mesh of this embodiment scheme according to the actual needs
's.
In addition, each functional unit in each embodiment of the present invention can be integrated in a processing unit, can also
That unit is individually physically present, can also two or more units it is integrated in a unit.Above-mentioned integrated list
Member can both be realized in the form of hardware, can also be realized in the form of SFU software functional unit.
If the integrated unit is realized in the form of SFU software functional unit and is used as independent production marketing or use
When, it can be stored in a computer read/write memory medium.Based on such understanding, technical scheme is substantially
The part to be contributed in other words to prior art or all or part of the technical scheme can be in the form of software products
Embody, the computer software product is stored in a storage medium, including some instructions are causing a computer
Equipment (can be personal computer, server, or network equipment etc.) performs the complete of each embodiment methods described of the present invention
Portion or part steps.And foregoing storage medium includes:USB flash disk, mobile hard disk, read-only storage (ROM, Read-Only
Memory), random access memory (RAM, Random Access Memory), magnetic disc or CD etc. are various can store journey
The medium of sequence code.
Described above, the above embodiments are merely illustrative of the technical solutions of the present invention, rather than its limitations;Although with reference to before
Embodiment is stated the present invention is described in detail, it will be understood by those within the art that:It still can be to preceding
State the technical scheme described in each embodiment to modify, or equivalent substitution is carried out to which part technical characteristic;And these
Modification is replaced, and the essence of appropriate technical solution is departed from the spirit and scope of various embodiments of the present invention technical scheme.
Claims (10)
- A kind of 1. verification method for clicking graphical verification code, it is characterised in that including:The checking request that different application end background system is sent is received, is believed in the checking request comprising graphical verification code parameter Breath;According to the graphical verification code parameter information generate targeted graphical identifying code and it is corresponding click operation instruction information, concurrently Intended application end background system corresponding to giving;Preserve checking information corresponding to the operation instruction information, the checking information include point selection operation initialization step information and Pre-set co-ordinate information;Receive intended application end background system feedback clicks operation information, and the operation information that clicks is according to targeted customer Clicking operating procedure and clicking coordinate information on the graphical verification code generates;Click whether operation information matches with the checking information described in judgement, if matching, judge targeted customer's checking Success, if mismatching, judge targeted customer's authentication failed.
- 2. according to the method for claim 1, it is characterised in that described generated according to the graphical verification code parameter information is schemed Shape identifying code and it is corresponding click operation instruction information, including:A Target Photo to match with the graphical verification code parameter information is randomly selected from context vault as Background Piece, and draw speckle patterns at random on the background picture;The Chinese character for obtaining the first preset number at random from GBK Chinese character basies forms first set;Font information corresponding to Chinese character random selection in respectively described first set, and will be corresponding according to the font information Chinese character be plotted in different interim painting canvas, the font information include font size, font style, font color, font One or more in the anglec of rotation;The canvas coordinate point of first preset number is randomly choosed on the background picture, and the interim painting canvas is distinguished It is plotted at the canvas coordinate point, forms graphical verification code;Randomly select the different Chinese character of the second preset number in sequence from the first set and form the as target characters Two set;According in the second set and in the second set target characters be sequentially generated the graphical verification code corresponding to Click operation instruction information.
- 3. according to the method for claim 2, it is characterised in that the interim painting canvas is plotted to the picture respectively described Before at cloth coordinate points, methods described also includes:By pi and sinusoidal calculations, each interim painting canvas is distorted and stretch processing.
- 4. according to the method for claim 2, it is characterised in that the interim painting canvas is plotted to the picture respectively described After at cloth coordinate points, methods described also includes:The point coordinates of preset number is generated at random in the background picture, and according to different font informations in the Background Noise corresponding to generation in piece;According to the font color of the target characters, in the target characters with approximate color draw different length straight line or Curve includes solid line, dotted line, the class style of strigula three as interfering line, the species of the interfering line.
- 5. the method according to any one of claim 2 to 4, it is characterised in that whether the judgement clicks operation information Matched with the checking information, including:If the coordinate points for clicking the target characters in coordinate points and the second set of the point selection operation of the targeted customer are not Matching, or, the sequencing for clicking coordinate points of the point selection operation of the targeted customer and the target Chinese in the second set The order of word is mismatched, then operation information is clicked described in judgement and is mismatched with the checking information;If the coordinate points phase for clicking coordinate points and the target characters in the second set of the point selection operation of the targeted customer Matching, and the targeted customer point selection operation the sequencing for clicking coordinate points whether with the target in the second set The order of Chinese character matches, then click operation information described in judgement matches with the checking information.
- A kind of 6. checking system for clicking graphical verification code, it is characterised in that including:At least one application end background system, application end foreground system, authentication server, wherein,The authentication server includes the first receiving module, please for receiving the checking that different application end background system is sent Ask, graphical verification code parameter information is included in the checking request;The authentication server also includes generation module, for generating graphic verification according to the graphical verification code parameter information Code and it is corresponding click operation instruction information, and intended application end background system corresponding to being sent to;The authentication server also includes memory module, for preserving checking information corresponding to the operation instruction information, institute Stating checking information includes point selection operation initialization step information and pre-set co-ordinate information;The application end background system be used to receiving corresponding to application end foreground system send click operation information, the operation Information generates according to targeted customer's clicking operating procedure and clicking coordinate information on the graphical verification code;The authentication server also includes the second receiving module, for receiving the institute of intended application end background system feedback State and click operation information;The authentication server also includes judge module, for judge it is described click operation information whether with the checking information Matching, if matching, judges that the targeted customer is proved to be successful, if mismatching, judge targeted customer's authentication failed.
- 7. system according to claim 6, it is characterised in that the generation module, including:First choice unit, for randomly selecting a mesh to match with the graphical verification code parameter information from context vault Piece mark on a map as background picture, and draws speckle patterns at random on the background picture;Second selecting unit, the Chinese character for obtaining the first preset number at random from GBK Chinese character basies form first set;3rd selecting unit, for being respectively font information corresponding to the Chinese character random selection in the first set, and according to Corresponding Chinese character is plotted in different interim painting canvas by the font information, and the font information includes font size, font One or more in style, font color, the font anglec of rotation;First generation unit, for randomly choosing the canvas coordinate point of first preset number on the background picture, and The interim painting canvas is plotted at the canvas coordinate point respectively, generates graphical verification code;4th selecting unit, the different Chinese character for randomly selecting the second preset number in sequence from the first set are made Second set is formed for target characters;Second generation unit, for according to being sequentially generated of target characters in the second set and in the second set Operation instruction information is clicked corresponding to graphical verification code.
- 8. system according to claim 7, it is characterised in that the generation module also includes:Painting canvas processing unit, for it is described the interim painting canvas is plotted at the canvas coordinate point respectively before, pass through Pi and sinusoidal calculations, are distorted and stretch processing to each interim painting canvas.
- 9. system according to claim 7, it is characterised in that the generation module also includes:Noise generation unit, for generating the point coordinates of preset number at random in the background picture, and according to different fonts Information generated in the background picture corresponding to noise;Interfering line generation unit, for the font color according to the target characters, with approximate color in the target characters The straight line or curve for drawing different length include solid line, dotted line, the class wind of strigula three as interfering line, the species of the interfering line Lattice.
- 10. the system according to any one of claim 7 to 9, it is characterised in that the judge module, including:First judging unit, if the point selection operation of the targeted customer clicks coordinate points and the target Chinese in the second set The coordinate points of word mismatch, or, the sequencing for clicking coordinate points and the described second collection of the point selection operation of the targeted customer The order of target characters in conjunction is mismatched, then operation information is clicked described in judgement and is mismatched with the checking information;It is if described The coordinate points for clicking coordinate points and the target characters in the second set of the point selection operation of targeted customer match, and described Targeted customer point selection operation the sequencing for clicking coordinate points whether the order with the target characters in the second set Match, then click operation information described in judgement matches with the checking information;Second judging unit, if the operation information that clicks matches with the checking information, judge targeted customer's checking Success, if the operation information that clicks mismatches with the checking information, judge targeted customer's authentication failed.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201711003786.2A CN107563181A (en) | 2017-10-24 | 2017-10-24 | A kind of verification method and system for clicking graphical verification code |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201711003786.2A CN107563181A (en) | 2017-10-24 | 2017-10-24 | A kind of verification method and system for clicking graphical verification code |
Publications (1)
Publication Number | Publication Date |
---|---|
CN107563181A true CN107563181A (en) | 2018-01-09 |
Family
ID=60987051
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201711003786.2A Pending CN107563181A (en) | 2017-10-24 | 2017-10-24 | A kind of verification method and system for clicking graphical verification code |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN107563181A (en) |
Cited By (10)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN109299602A (en) * | 2018-08-08 | 2019-02-01 | 厦门大学嘉庚学院 | Verification code generation method based on implicit figure |
CN109618349A (en) * | 2019-01-08 | 2019-04-12 | 中国联合网络通信集团有限公司 | A kind of data transmission method and server |
CN110399712A (en) * | 2019-07-31 | 2019-11-01 | 网易(杭州)网络有限公司 | Validation-cross method, apparatus, medium and calculating equipment based on identifying code |
CN110808961A (en) * | 2019-10-16 | 2020-02-18 | 上海易点时空网络有限公司 | Data processing method and device for security verification |
CN111160369A (en) * | 2019-12-25 | 2020-05-15 | 携程旅游信息技术(上海)有限公司 | Method, system, electronic device and storage medium for cracking Chinese character verification code |
CN111783062A (en) * | 2020-05-28 | 2020-10-16 | 苏宁金融科技(南京)有限公司 | Verification code identification method and device, computer equipment and storage medium |
CN112352237A (en) * | 2018-02-15 | 2021-02-09 | 惠尔丰公司 | System and method for authentication code entry |
CN112948799A (en) * | 2021-01-28 | 2021-06-11 | 深圳市迅雷网文化有限公司 | Method and related device for verifying graphic verification code |
CN113505360A (en) * | 2021-07-16 | 2021-10-15 | 湖南快乐阳光互动娱乐传媒有限公司 | Verification code request processing method and related equipment |
CN113535018A (en) * | 2020-11-13 | 2021-10-22 | 厦门市和家健脑智能科技有限公司 | Human-computer interaction method and device for evaluating cognitive speed |
Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101261669A (en) * | 2007-03-09 | 2008-09-10 | 吴天际 | A method for visual validation system based on mouse operation |
CN103873481A (en) * | 2014-03-31 | 2014-06-18 | 百度在线网络技术(北京)有限公司 | Verification method, open platform, server end and verification system |
CN104580109A (en) * | 2013-10-24 | 2015-04-29 | 深圳市腾讯计算机系统有限公司 | Method and device for generating click verification code |
CN104852885A (en) * | 2014-02-14 | 2015-08-19 | 腾讯科技(深圳)有限公司 | Method, device and system for verifying verification code |
-
2017
- 2017-10-24 CN CN201711003786.2A patent/CN107563181A/en active Pending
Patent Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN101261669A (en) * | 2007-03-09 | 2008-09-10 | 吴天际 | A method for visual validation system based on mouse operation |
CN104580109A (en) * | 2013-10-24 | 2015-04-29 | 深圳市腾讯计算机系统有限公司 | Method and device for generating click verification code |
CN104852885A (en) * | 2014-02-14 | 2015-08-19 | 腾讯科技(深圳)有限公司 | Method, device and system for verifying verification code |
CN103873481A (en) * | 2014-03-31 | 2014-06-18 | 百度在线网络技术(北京)有限公司 | Verification method, open platform, server end and verification system |
Cited By (15)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN112352237A (en) * | 2018-02-15 | 2021-02-09 | 惠尔丰公司 | System and method for authentication code entry |
CN109299602A (en) * | 2018-08-08 | 2019-02-01 | 厦门大学嘉庚学院 | Verification code generation method based on implicit figure |
CN109618349A (en) * | 2019-01-08 | 2019-04-12 | 中国联合网络通信集团有限公司 | A kind of data transmission method and server |
CN110399712A (en) * | 2019-07-31 | 2019-11-01 | 网易(杭州)网络有限公司 | Validation-cross method, apparatus, medium and calculating equipment based on identifying code |
CN110808961A (en) * | 2019-10-16 | 2020-02-18 | 上海易点时空网络有限公司 | Data processing method and device for security verification |
CN110808961B (en) * | 2019-10-16 | 2022-02-01 | 上海易点时空网络有限公司 | Data processing method and device for security verification |
CN111160369A (en) * | 2019-12-25 | 2020-05-15 | 携程旅游信息技术(上海)有限公司 | Method, system, electronic device and storage medium for cracking Chinese character verification code |
CN111160369B (en) * | 2019-12-25 | 2024-03-05 | 携程旅游信息技术(上海)有限公司 | Method, system, electronic equipment and storage medium for cracking Chinese character verification code |
CN111783062A (en) * | 2020-05-28 | 2020-10-16 | 苏宁金融科技(南京)有限公司 | Verification code identification method and device, computer equipment and storage medium |
CN111783062B (en) * | 2020-05-28 | 2023-05-02 | 苏宁金融科技(南京)有限公司 | Verification code identification method, device, computer equipment and storage medium |
CN113535018A (en) * | 2020-11-13 | 2021-10-22 | 厦门市和家健脑智能科技有限公司 | Human-computer interaction method and device for evaluating cognitive speed |
CN113535018B (en) * | 2020-11-13 | 2024-03-22 | 厦门市和家健脑智能科技有限公司 | Human-computer interaction method and device for evaluating cognitive speed |
CN112948799A (en) * | 2021-01-28 | 2021-06-11 | 深圳市迅雷网文化有限公司 | Method and related device for verifying graphic verification code |
CN112948799B (en) * | 2021-01-28 | 2024-02-27 | 深圳市迅雷网文化有限公司 | Verification method of graphic verification code and related device thereof |
CN113505360A (en) * | 2021-07-16 | 2021-10-15 | 湖南快乐阳光互动娱乐传媒有限公司 | Verification code request processing method and related equipment |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN107563181A (en) | A kind of verification method and system for clicking graphical verification code | |
CN111401558B (en) | Data processing model training method, data processing device and electronic equipment | |
CN108509915A (en) | The generation method and device of human face recognition model | |
CN104954353B (en) | The method of calibration and device of APK file bag | |
CN108875404B (en) | Data desensitization method and device based on machine learning and storage medium | |
CN107251033A (en) | System and method for carrying out active user checking in online education | |
CN102006163A (en) | User authentication method, device and server | |
CN105933266A (en) | Verification method and server | |
CN108256303A (en) | Electronic device, auth method and storage medium | |
CN105913245A (en) | Internet payment method, device and server | |
CN105956469A (en) | Method and device for identifying file security | |
CN104184709A (en) | Verification method, device, server, service data center and system | |
CN110288755A (en) | The invoice method of inspection, server and storage medium based on text identification | |
CN108491812A (en) | The generation method and device of human face recognition model | |
CN109871791A (en) | Image processing method and device | |
US20100024018A1 (en) | Keyboard Display Posing An Identification Challenge For An Automated Agent | |
CN112968797B (en) | Application configuration method, system and storage medium of cloud service software | |
CN108234441A (en) | Determine method, apparatus, electronic equipment and the storage medium of forgery access request | |
CN112272328B (en) | Bullet screen recommendation method and related device | |
US8510809B2 (en) | Network authentication system and method | |
CN105577692A (en) | Website login authentication method and device | |
CN110795706B (en) | Hash-based verification method, equipment, storage medium and device | |
CN106161338A (en) | For verifying the method and device of user identity | |
US20220335114A1 (en) | Verification method and verification apparatus based on attacking image style transfer | |
CN110543754A (en) | memory, verification code implementation method, device and equipment |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
RJ01 | Rejection of invention patent application after publication | ||
RJ01 | Rejection of invention patent application after publication |
Application publication date: 20180109 |